Vulnerabilities
Summary — last 7 days
New vulnerabilities2,761▲ 61 vs. last week
Critical / high1,285▼ 211 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)233▲ 215 vs. last week
2,505 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Awaiting Analysis | High (8.7) | 0.62% | — | Nginx JavascriptAI | 9/2/2026 | 9/2/2026 | A vulnerability exists in NGINX JavaScript where a malformed HTTP response received by ngx.fetch() can crash an NGINX worker when trusted JavaScript reads Response.statusText. Exploitation requires control or influence over the fetched HTTP response. Impact: This vulnerability may allow remote attackers to cause a… | |
| Analyzed | Medium (4.3) | 0.28% | — | Jenkins Script Security | 9/2/2026 | 9/22/2026 | Jenkins Script Security Plugin 1412.v7737b_3405f86 and earlier does not enforce a permission check in the method that controls the "Force the use of the sandbox globally in the system" setting, allowing attackers to disable it through Stapler data binding. | |
| Analyzed | Medium (4.3) | 0.31% | — | Jenkins Script Security | 9/2/2026 | 9/22/2026 | Jenkins Script Security Plugin 1412.v7737b_3405f86 and earlier uses the `@DataBoundConstructor` annotation on a constructor that loads script approval configuration, allowing attackers able to submit certain forms to read that configuration. | |
| Deferred | Medium (6.3) | 0.55% | — | Ash-project ASH TypescriptAI | 9/1/2026 | 9/1/2026 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_typescript allows an unauthenticated attacker to read internal application data from an HTTP 500 response body. When a typed-controller route handler returns anything other than a %Plug.Conn{}, dispatch/3 in… | |
| Deferred | Medium (6.3) | 0.68% | — | Ash-project ASH TypescriptAI | 9/1/2026 | 9/1/2026 | Improper Input Validation vulnerability in ash-project ash_typescript allows a remote attacker to submit argument values outside a declared allowlist or bound on typed-controller routes. AshTypescript.TypedController.RequestHandler in lib/ash_typescript/typed_controller/request_handler.ex calls Ash.Type.cast_input/3… | |
| Deferred | Low (2.3) | 0.50% | — | Ash-project ASH TypescriptAI | 9/1/2026 | 9/1/2026 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in ash-project ash_typescript allows an attacker who controls a path-parameter value to redirect a generated client's request, and the credentials attached to it, to an unintended route or an external origin. The URL builders in… | |
| Deferred | High (8.2) | 0.50% | — | Ash-project ASH TypescriptAI | 9/1/2026 | 9/1/2026 | Incorrect Authorization vulnerability in ash-project ash_typescript allows an unauthorized RPC caller to read attribute values that Ash field policies denied. When a field policy denies an attribute, Ash substitutes %Ash.ForbiddenField{}, which retains the real value in original_value because embedded resources must… | |
| Deferred | Medium (6.3) | 0.55% | — | Ash-project ASH TypescriptAI | 9/1/2026 | 9/1/2026 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_typescript allows an unauthenticated attacker to receive unredacted internal error data by provoking an error shape the configured error handler does not match. apply_error_handler/3 in lib/ash_typescript/rpc/errors.ex is the… | |
| Deferred | High (8.2) | 0.55% | — | Ash-project ASH TypescriptAI | 9/1/2026 | 9/1/2026 | Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_typescript allows an unauthenticated attacker to exhaust the BEAM atom table and abort the node via client-supplied typed struct field names. resolve_typed_struct_field/2 in lib/ash_typescript/rpc/field_processing/field_selector.ex… | |
| Deferred | High (8.7) | 0.55% | — | Ash-project ASH TypescriptAI | 9/1/2026 | 9/1/2026 | Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_typescript allows an unauthenticated attacker to exhaust the BEAM atom table and abort the node via client-supplied RPC field names. AshTypescript.FieldFormatter.convert_to_field_atom/2 in lib/ash_typescript/field_formatter.ex… | |
| Deferred | Medium (6.8) | 0.23% | — | Sogo ADD Script TO Individual Pages Header FooterAI | 8/30/2026 | 8/31/2026 | The SOGO Add Script to Individual Pages Header Footer WordPress plugin through 3.9 does not sanitise or escape the custom header/footer script values saved from its post metabox, and does not restrict them to users with the unfiltered_html capability, allowing users with contributor-level access and above to store… | |
| Awaiting Analysis | Critical (9.1) | 0.23% | — | Drupal Photoswipe - Responsive Javascript Modal Image GalleryAI | 8/25/2026 | 8/28/2026 | Missing Authorization vulnerability in Drupal PhotoSwipe - Responsive JavaScript Modal Image Gallery allows Forceful Browsing. This issue affects PhotoSwipe - Responsive JavaScript Modal Image Gallery versions: from 0.0.0 to 3.2.0. | |
| Awaiting Analysis | High (7.7) | 0.53% | — | Redhat Advanced Cluster ManagementAIRedhat Multicloud Operators SubscriptionAI | 8/20/2026 | 8/28/2026 | A flaw was found in the multicloud-operators-subscription component of Red Hat Advanced Cluster Management (RHACM). A tenant with HelmRelease create permissions can exploit this vulnerability by manipulating the `secretRef.Namespace` field. This allows the `GetSecret()` function in the HelmRelease controller to fetch… | |
| Awaiting Analysis | Critical (9.9) | 0.62% | — | Multicloud-operators SubscriptionAI | 8/20/2026 | 8/28/2026 | A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a tenant, who has the ability to create HelmRelease custom resources (CRs), to bypass existing security controls. The system's HelmRelease controller processes Helm chart templates using its own elevated ServiceAccount… | |
| Deferred | Critical (9.8) | 0.56% | — | Flexible SubscriptionsAI | 8/19/2026 | 8/20/2026 | Customer PHP Object Injection in Flexible Subscriptions <= 1.8.1 versions. | |
| Deferred | High (7.1) | 0.25% | — | Nextscripts Social Networks Auto PosterAI | 8/19/2026 | 8/26/2026 | The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.4.8 does not escape some of the query-string parameters it reflects back on one of its admin pages, allowing attackers to perform Reflected Cross-Site Scripting attacks against logged-in users such as administrators who are tricked into opening a… | |
| Analyzed | High (7.5) | 0.41% | — | Oracle Scripting | 8/18/2026 | 8/28/2026 | Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks of this… | |
| Analyzed | High (7.1) | 0.30% | — | Oracle Scripting | 8/18/2026 | 8/28/2026 | Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks of this… | |
| Analyzed | High (7.1) | 0.30% | — | Oracle Scripting | 8/18/2026 | 8/28/2026 | Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks of this… | |
| Analyzed | High (8.8) | 0.43% | — | Oracle Scripting | 8/18/2026 | 8/31/2026 | Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks of this… | |
| Awaiting Analysis | Critical (9.9) | 0.69% | — | Multicloud-operators SubscriptionAI | 8/17/2026 | 9/29/2026 | A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants the attacker the ability to deploy resources into any namespace with the… | |
| Deferred | Medium (6.5) | 0.22% | — | Bestwebsoft Subscriber Cross Site Scripting Profile Extra FieldsAI | 8/13/2026 | 8/14/2026 | Subscriber Cross Site Scripting (XSS) in Profile Extra Fields by BestWebSoft <= 1.3.4 versions. | |
| Deferred | Critical (9.8) | 0.96% | — | Woocommerce SubscriptionsAI | 8/12/2026 | 8/26/2026 | The WooCommerce Subscriptions WordPress plugin before 9.1.0 does not validate user input before unserializing it on stores with High-Performance Order Storage enabled, leading to a PHP Object Injection issue which unauthenticated users can escalate to Remote Code Execution via a gadget chain present in the bundled… | |
| Awaiting Analysis | High (7.7) | 0.48% | — | Multicloud-operators SubscriptionAI | 8/12/2026 | 8/27/2026 | A flaw was found in multicloud-operators-subscription. A privileged user, specifically a namespace administrator capable of creating Channel and Subscription resources, can exploit this vulnerability. By manipulating the Channel.Spec.SecretRef.Namespace field, the user can cause the system to copy sensitive Secret… | |
| Analyzed | High (8.8) | 0.94% | — | Microsoft Exchange ServerMicrosoft Exchange Server Subscription Edition | 8/11/2026 | 8/17/2026 | Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network. |